hahwul / dalfox

🌙🦊 Dalfox is a powerful open-source XSS scanner and utility focused on automation.
https://dalfox.hahwul.com
MIT License
3.59k stars 402 forks source link

[New feature] Support HAR in FILE mode #380

Closed hahwul closed 2 years ago

hahwul commented 2 years ago

Test

./dalfox file ~/222.har --har --proxy http://localhost:8090
 🎯  Target                 /Users/hahwul/222.har
 🏁  Method                 FILE Mode
 🖥  Worker                 100
 🔦  BAV                    true
 ⛏  Mining                 true (Gf-Patterns)
 🔬  Mining-DOM             true (mining from DOM)
 ⏱  Timeout                10
 📤  FollowRedirect         false
 🕰  Started at             2022-06-04 23:47:24.541722 +0900 KST m=+0.087941095

[*] 🦊 Start scan [SID:0] / URL: https://www.hahwul.com/
[I] Found 0 testing point in DOM base parameter mining
...

=> Proxy log 스크린샷 2022-06-04 오후 11 49 17